<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NATing through two firewalls(Datacenter-Edge) in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391798#M956554</link>
    <description>&lt;P&gt;i can get internet access easily however i cannot publish any web server behind the datacenter firewall&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i configured the NATing on both firewalls and all the vlans can access internet&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The main issue is publishing the webserver on the server vlan(behind datacenter fw ) it not works&lt;/P&gt;
&lt;P&gt;i test to publish the web server from the EDGE firewall it works fine&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 31 May 2018 10:02:06 GMT</pubDate>
    <dc:creator>ryoussef@toptech.com.eg</dc:creator>
    <dc:date>2018-05-31T10:02:06Z</dc:date>
    <item>
      <title>NATing through two firewalls(Datacenter-Edge)</title>
      <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391184#M956544</link>
      <description>&lt;P&gt;Hello Everyone ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I try to publish a website from a server range , so i Make an autonat static&amp;nbsp; nating on the firewall data-center but it didnt work and the internet connection on this server has been stopped !!&lt;/P&gt;
&lt;P&gt;Note&lt;/P&gt;
&lt;P&gt;*the firewall used on both firewall is FTD 2110&amp;nbsp;&lt;/P&gt;
&lt;P&gt;*the datacenter firewall pass the traffic through the edge firewall&amp;nbsp;&lt;/P&gt;
&lt;P&gt;*when i make this Nating on the edge firewall it works fine&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Attached below may help you to understand the topology of my network&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any Ideas ?!!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:49:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391184#M956544</guid>
      <dc:creator>ryoussef@toptech.com.eg</dc:creator>
      <dc:date>2020-02-21T15:49:37Z</dc:date>
    </item>
    <item>
      <title>Re: NATing through two firewalls(Datacenter-Edge)</title>
      <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391713#M956545</link>
      <description>Nice drawing : )). Now where's that server located on the diagram?&lt;BR /&gt;Some config output will help us get this though.</description>
      <pubDate>Thu, 31 May 2018 06:59:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391713#M956545</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-05-31T06:59:36Z</dc:date>
    </item>
    <item>
      <title>Re: NATing through two firewalls(Datacenter-Edge)</title>
      <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391783#M956548</link>
      <description>&lt;P&gt;Thank you &lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;I try to draw on visio&amp;nbsp; and i make it very simple&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i just need the idea of how to nat through the 2 firewall because i can nat from only the edge firewall&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 31 May 2018 09:24:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391783#M956548</guid>
      <dc:creator>ryoussef@toptech.com.eg</dc:creator>
      <dc:date>2018-05-31T09:24:13Z</dc:date>
    </item>
    <item>
      <title>Re: NATing through two firewalls(Datacenter-Edge)</title>
      <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391795#M956551</link>
      <description>I am not sure why can't you NAT from the DC firewall? What's the error you get?&lt;BR /&gt;Also NAT is usually required for public/Internet access? Why do you need to NAT it twice?</description>
      <pubDate>Thu, 31 May 2018 09:50:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391795#M956551</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-05-31T09:50:58Z</dc:date>
    </item>
    <item>
      <title>Re: NATing through two firewalls(Datacenter-Edge)</title>
      <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391798#M956554</link>
      <description>&lt;P&gt;i can get internet access easily however i cannot publish any web server behind the datacenter firewall&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i configured the NATing on both firewalls and all the vlans can access internet&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The main issue is publishing the webserver on the server vlan(behind datacenter fw ) it not works&lt;/P&gt;
&lt;P&gt;i test to publish the web server from the EDGE firewall it works fine&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 31 May 2018 10:02:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391798#M956554</guid>
      <dc:creator>ryoussef@toptech.com.eg</dc:creator>
      <dc:date>2018-05-31T10:02:06Z</dc:date>
    </item>
    <item>
      <title>Re: NATing through two firewalls(Datacenter-Edge)</title>
      <link>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391876#M956555</link>
      <description>Now I finally got it ! : ))&lt;BR /&gt;This should be pretty easy though:&lt;BR /&gt; - post your NAT config on each FW&lt;BR /&gt; - I would also place a capture on the DC firewall on each of the two interfaces: "outside and inside" ; here's my strategy on the DC firewall:&lt;BR /&gt; access-list capt_DNAT permit ip host public_source_IP_from_where_you_test host server_private IP&lt;BR /&gt; access-list capt_DNAT permit ip host server_private IP host public_source_IP_from_where_you_test &lt;BR /&gt;capture cap1 interface inside access-list capt_DNAT&lt;BR /&gt;capture cap2 interface outside access-list capt_DNAT&lt;BR /&gt;&lt;BR /&gt;Try connecting on the port from public_source_IP_from_where_you_test then check captures output.</description>
      <pubDate>Thu, 31 May 2018 12:27:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nating-through-two-firewalls-datacenter-edge/m-p/3391876#M956555</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2018-05-31T12:27:59Z</dc:date>
    </item>
  </channel>
</rss>

